Jump to content
  • Checkout
  • Login
  • Get in touch

osCommerce

The e-commerce.

Anti-XSS


DamanC

Recommended Posts

Posted

Just finishing off the security on a site I am working on. Last feature Anti-XSS

 

The two options I believe I have are:

 

ANTI Cross Site Scripting attacks: http://addons.oscommerce.com/info/6044

 

OR

 

[TiM's] Safer Database Input Method: http://addons.oscommerce.com/info/6546

 

The second option look the best?

 

The issue I have is I use html in the products descriptions and in the attributes options names. Its only simple formatting, <p> <h4> <br> etc. Is option two going to goof anything up?

 

Thanks

  • 2 weeks later...
Posted

Any answers to this question? It is a darned good question - has me worried before installing it.

Cheryl

Posted

I was wondering about that as well, but seeing as only a minor change is involved in installing "safer database input method", the best way to find out is installing it and try the store, if it "goofs" anything up, it's easily removed.

~ Don't mistake my kindness for weakness ~

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...